NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 22350 | CVE-2016-9286 | framework/modules/users/controllers/usersController.php in Exponent CMS v2.4.0patch1 does not properly restrict access to user records, which allows remote attackers to read address information, as demonstrated by an address/show/id/1 URI. | 2 | 5 | Medium | 2017-01-19 | 2016-11-29 | View | |
| 22606 | CVE-2015-0070 | Microsoft Internet Explorer 6 through 11 allows remote attackers to read content from a different (1) domain or (2) zone via a crafted web site, aka "Internet Explorer Cross-domain Information Disclosure Vulnerability." | 2 | 4.3 | Medium | 2017-01-19 | 2015-08-28 | View | |
| 23374 | CVE-2015-0978 | Multiple untrusted search path vulnerabilities in (1) EQATEC.Analytics.Monitor.Win32_vc100.dll and (2) EQATEC.Analytics.Monitor.Win32_vc100-x64.dll in Elipse E3 4.5.232 through 4.6.161 allow local users to gain privileges via a Trojan horse DLL in an unspecified directory. NOTE: this may overlap CVE-2015-2264. | 2 | 6.9 | Medium | 2017-01-19 | 2015-03-16 | View | |
| 23630 | CVE-2015-1269 | The DecodeHSTSPreloadRaw function in net/http/transport_security_state.cc in Google Chrome before 43.0.2357.130 does not properly canonicalize DNS hostnames before making comparisons to HSTS or HPKP preload entries, which allows remote attackers to bypass intended access restrictions via a string that (1) ends in a . (dot) character or (2) is not entirely lowercase. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-30 | View | |
| 23886 | CVE-2015-1627 | Microsoft Internet Explorer 7 through 11 allows remote attackers to gain privileges via a crafted web site, aka "Internet Explorer Elevation of Privilege Vulnerability." | 2 | 4.3 | Medium | 2017-01-19 | 2017-01-05 | View |
Page 2810 of 17672, showing 5 records out of 88360 total, starting on record 14046, ending on 14050